Silly Samsung Smart Fridge Can Expose Your Gmail Password

Ah, the Internet Of Things (IoT) - the epitome of "Let's do it because we can!". Once again we see an example of a poorly thought out security approach that leaves Joe user hanging it out over the ragged edge. This time, it's a Samsung Smart Fridge - and while it may be a good fridge...

"While SSL is in place, the fridge fails to validate the certificate. Hence, hackers who manage to access the network that the fridge is on (perhaps through a de-authentication and fake Wi-Fi access point attack) can Man-In-The-Middle the fridge calendar client and steal Google login credentials from their neighbours, for example."
"Egregiously dumb fridge" does not have the same ring, does it?


No comments:

Post a Comment